USRE39589EExpiredUtility

Security method for transmissions in telecommunication networks

Assignee: NOKIA NETWORKS OYPriority: Sep 15, 1997Filed: Sep 9, 2004Granted: Apr 24, 2007
Est. expirySep 15, 2017(expired)· nominal 20-yr term from priority
Inventors:Tommi Raivisto
H04W 12/033H04L 9/3242H04L 2209/80H04W 12/10H04W 12/06
61
PatentIndex Score
7
Cited by
22
References
31
Claims

Abstract

The invention related to method for providing connection security for the transmission between communicating parties in a telecommunication network, the method comprising the steps of: exchanging security parameters between communicating parties, providing connection security for messages based on these security parameters, and transmitting said messages between communicating parties. It is characteristic for the method according to the invention that it further comprises the steps of: reaching agreement between communicating parties on an interval for recalculation of the security parameters, monitoring of the interval for recalculation by the communicating parties, recalculating the security parameters at the agreed interval, and providing connection security for messages based on the latest recalculated security parameters.

Claims

exact text as granted — not AI-modified
1. A method for providing connection security for the transmission between communicating parties in a telecommunication network, the method comprising the steps of:
 exchanging security parameters between communicating parties,  
 providing connection security for messages based on these security parameters,  
 transmitting said messages between communicating parties,  
 wherein the method further comprises the steps of:  
 reaching agreement between communicating parties on an interval for recalculation of the security parameters,  
 monitoring of the interval for recalculation by the communicating parties,  
 recalculating the security parameters at the agreed interval, and providing connection security for messages based on the latest recalculated security parameters.  
 
     
     
       2. The method according to  claim 1 , wherein providing connection security for messages based on the latest recalculated security parameters comprises the step of
 ciphering messages based on the latest recalculated security parameters.  
 
     
     
       3. The method according to  claim 1 , wherein providing connection security for messages based on the latest recalculated security parameters comprises the step of
 authenticating and providing integrity for the messages based on the latest recalculated security parameters.  
 
     
     
       4. The method according to  claim 1 , wherein providing connection security for messages based on the latest recalculated security parameters comprises the steps of
 ciphering messages based on the latest recalculated security parameters, and  
 authenticating and providing integrity for the messages based on the latest recalculated security parameters.  
 
     
     
       5. The method according to  claim 3 , wherein authenticating and providing integrity for the messages is arranged with a message authentication code MAC. 
     
     
       6. The method according to  claim 1 , wherein the method further comprises the steps of:
 numbering the messages,  
 agreeing on the number of messages to determine the interval for the recalculation of the security parameters,  
 recalculating the security parameters after the agreed number of messages have been transmitted.  
 
     
     
       7. The method according to  claim 6 , wherein the method further comprises the steps of:
 numbering the messages with sequence numbers,  
 transmitting the sequence number with the message, and  
 using the latest sequence number as input for recalculation of the security parameters.  
 
     
     
       8. The method according to  claim 1 , wherein the method comprises the step of
 reaching agreement between communicating parties during handshaking on the interval for recalculation of the security parameters.  
 
     
     
       9. A mobile station configured to
   exchange security parameters with at least one communicating party,        negotiate an agreement with the at least one communicating party on an interval for recalculation of security parameters,        monitor the interval for recalculation,        recalculate the security parameters at the agreed interval, and        providing connection security for messages transmitted between the mobile station and the at least one communicating party based on the latest calculated security parameters.     
     
     
       10. The mobile station according to  claim 9 , configured to cipher messages based on the latest recalculated security parameters. 
     
     
       11. The mobile station according to  claim 9 , configured to authenticate and provide integrity for messages based on the latest recalculated security parameters. 
     
     
       12. The mobile station according to  claim 9 , configured to cipher, authenticate and provide integrity for messages based on the latest recalculated security parameters. 
     
     
       13. The mobile station according to  claim 11 , wherein the messages are authenticated and integrity for the messages is provided with a message authentication code. 
     
     
       14. The mobile station according to  claim 9 , configured to
   number the messages,        agree on a number of messages for determining the interval for the recalculation of security parameters, and        recalculate the security parameters after the agreed number of messages have been transmitted.     
     
     
       15. The mobile station according to  claim 14 , configured to
   number the messages with sequence numbers,        transmit a respective sequence number with a message, and        use the latest sequence number as input for recalculation of the security parameters.     
     
     
       16. The mobile station according to  claim 9 , configured to negotiate and reach an agreement with said at least one communicating party during handshaking on the interval for recalculation of the security parameters. 
     
     
       17. A server configured to
   exchange security parameters with at least one communicating party,        negotiate an agreement with the at least one communicating party on an interval for recalculation of security parameters,        monitor the interval for recalculation,        recalculate the security parameters at the agreed interval, and        provide connection security for messages transmitted between the server and the at least one communicating party based on the latest calculated security parameters.     
     
     
       18. The server according to  claim 17 , configured to cipher messages based on the latest recalculated security parameters. 
     
     
       19. The server according to  claim 17 , configured to authenticate and provide integrity for messages based on the latest recalculated security parameters. 
     
     
       20. The server according to  claim 17 , configured to cipher, authenticate and provide integrity for messages based on the latest recalculated security parameters. 
     
     
       21. The server according to  claim 19 , wherein the messages are authenticated and integrity for the messages is provided with a message authentication code. 
     
     
       22. The server according to  claim 17 , configured to
   number the messages,        agree on a number of messages for determining the interval for the recalculation of security parameters, and        recalculate the security parameters after the agreed number of messages have been transmitted.     
     
     
       23. The server according to  claim 22 , configured to
   number the messages with sequence numbers,        transmit a respective sequence number with a message, and        use the latest sequence number as input for recalculation of the security parameters.     
     
     
       24. The server according to  claim 17 , configured to negotiate and reach an agreement with said at least one communicating party during handshaking on the interval for recalculation of the security parameters. 
     
     
       25. A mobile station comprising
   means for exchanging security parameters with at least one communicating party,        means for negotiating an agreement with the at least one communicating party on an interval for recalculation of security parameters,        means for monitoring the interval for recalculation,        means for recalculating the security parameters at the agreed interval, and        means for providing connection security for messages transmitted between the mobile station and the at least one communicating party based on the latest calculated security parameters.     
     
     
       26. A server comprising
   means for exchanging security parameters with at least one communicating party,        means for negotiating an agreement with the at least one communicating party on an interval for recalculation of security parameters,        means for monitoring the interval for recalculation,        means for recalculating the security parameters at the agreed interval, and        means for providing connection security for messages transmitted between the server and the at least one communicating party based on the latest calculated security parameters.     
     
     
       27. A method of operating a mobile station, the method comprising
   exchanging security parameters with at least one communicating party,        negotiating an agreement with the at least one communicating party on an interval for recalculation of security parameters,        monitoring the interval for recalculation,        recalculating the security parameters at the agreed interval, and        providing connection security for messages transmitted between the mobile station and the at least one communicating party based on the latest calculated security parameters.     
     
     
       28. A method of operating a server, the method comprising
   exchanging security parameters with at least one communicating party,        negotiating an agreement with the at least one communicating party on an interval for recalculation of security parameters,        monitoring the interval for recalculation,        recalculating the security parameters at the agreed interval, and        providing connection security for messages transmitted between the server and the at least one communicating party based on the latest calculated security parameters.     
     
     
       29. A telecommunications network comprising at least two parties arranged to communicate with each other and to provide connection security, the at least two parties configured to
   exchange security parameters with each other,        negotiate an agreement on an interval for recalculation of security parameters,        monitor the interval for recalculation,        recalculate the security parameters at the agreed interval, and        provide connection security for messages transmitted between the at least two communicating parties based on the latest calculated security parameters.     
     
     
       30. A telecommunications network comprising a server and at least one mobile station, the server and the at least one mobile station configured to
   exchange security parameters with each other,        negotiate an agreement on an interval for recalculation of security parameters,        monitor the interval for recalculation,        recalculate the security parameters at the agreed interval, and        provide connection security for messages transmitted between the server and the at least one mobile station on the latest calculated security parameters.     
     
     
       31. A telecommunications network comprising at least two mobile stations, the at least two mobile stations configured to
   exchange security parameters with each other,        negotiate an agreement on an interval for recalculation of security parameters,        monitor the interval for recalculation,        recalculate the security parameters at the agreed interval, and        provide connection security for messages transmitted between the at least two mobile station on the latest calculated security parameters.

Join the waitlist — get patent alerts

Track USRE39589E — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.